Sqli-Labs是用来练习sql注入的好平台。project地址:https://github.com/Audi-1/sqli-labs
本文测试环境:使用phpstudy集成环境。mysql版本:5.5.53
Less-11 POST-Error Based -Single quotes- String
Less-12 POST - Error Based -Double quotes - String
Sqli-Labs是用来练习sql注入的好平台。project地址:https://github.com/Audi-1/sqli-labs
本文测试环境:使用phpstudy集成环境。mysql版本:5.5.53
Less-11 POST-Error Based -Single quotes- String
Less-12 POST - Error Based -Double quotes - String
Sqli-Labs是用来练习sql注入的好平台。project地址:https://github.com/Audi-1/sqli-labs
本文测试环境:使用phpstudy集成环境。mysql版本:5.5.53
Less-8 GET-Blind-Boolean Based- Single Quotes
Less-9 GET-Time based - Single Quotes
Less-10 GET-Blind-Time based - double quotes
xss
逻辑问题、任意用户密码重置
文件上传、php伪协议、文件包含
Software-Security-Learning 学习资料
02/17日更新小记:
Web-Security-Learning 学习资料
01月29日更新:
php弱类型比较
strcmp、eregi
源码泄露、二次注入
未完待续